From d9879c25335ade46e7cba3d86151fb6cf5aadaed Mon Sep 17 00:00:00 2001 From: Kurt Schwehr Date: Mon, 11 Sep 2017 07:23:00 -0700 Subject: [PATCH] Fix double to int cast overflow in json_object_get_int64. Found with autofuzz in GDAL --- json_object.c | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/json_object.c b/json_object.c index 9ffb149d..8cd5922e 100644 --- a/json_object.c +++ b/json_object.c @@ -688,6 +688,10 @@ int64_t json_object_get_int64(const struct json_object *jso) case json_type_int: return jso->o.c_int64; case json_type_double: + if (jso->o.c_double >= INT64_MAX) + return INT64_MAX; + if (jso->o.c_double <= INT64_MIN) + return INT64_MIN; return (int64_t)jso->o.c_double; case json_type_boolean: return jso->o.c_boolean; -- 2.39.5